PkgRadar

npm · registry.npmjs.org

@typespec/http-client-csharp

Credential file access: matched ".azure"

Why PkgRadar flagged 1.0.0-alpha.20260527.5

SeveritySignalEvidence
highCredential file accessmatched ".azure" · package/dist/emitter/src/emit-generate.browser.js

Scanned versions

VersionVerdictScoreScanned (UTC)
1.0.0-alpha.20260616.6Low risk02026-06-16
1.0.0-alpha.20260615.7Low risk02026-06-15
1.0.0-alpha.20260612.4Low risk02026-06-15
1.0.0-alpha.20260615.6Low risk02026-06-15
1.0.0-alpha.20260611.10Low risk02026-06-12
1.0.0-alpha.20260611.9Low risk02026-06-12
1.0.0-alpha.20260611.8Low risk02026-06-11
1.0.0-alpha.20260611.6Low risk02026-06-11
1.0.0-alpha.20260611.5Low risk02026-06-11
1.0.0-alpha.20260610.7Low risk02026-06-11
1.0.0-alpha.20260610.5Low risk02026-06-10
1.0.0-alpha.20260610.4Low risk02026-06-10
1.0.0-alpha.20260610.2Low risk02026-06-10
1.0.0-alpha.20260609.5Low risk02026-06-09
1.0.0-alpha.20260608.9Low risk02026-06-09
1.0.0-alpha.20260609.2Low risk02026-06-09
1.0.0-alpha.20260608.4Low risk02026-06-08
1.0.0-alpha.20260608.8Low risk02026-06-08
1.0.0-alpha.20260608.7Low risk02026-06-08
1.0.0-alpha.20260608.2Low risk02026-06-08
1.0.0-alpha.20260605.4Low risk02026-06-05
1.0.0-alpha.20260603.4Low risk02026-06-03
1.0.0-alpha.20260603.3Low risk02026-06-03
1.0.0-alpha.20260601.3Low risk02026-06-01
1.0.0-alpha.20260529.3Low risk02026-05-29
1.0.0-alpha.20260529.4Low risk02026-05-29
1.0.0-alpha.20260528.5Low risk02026-05-29
1.0.0-alpha.20260528.2Low risk02026-05-28
1.0.0-alpha.20260528.3Low risk02026-05-28
1.0.0-alpha.20260527.5Review152026-05-28
1.0.0-alpha.20260526.4Review152026-05-27
1.0.0-alpha.20260526.6Review152026-05-27

Block this in CI

PkgRadar gates @typespec/http-client-csharp (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @typespec/[email protected]